Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-982p-px8m-39qc

Опубликовано: 27 авг. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 9

Описание

Unauthenticated access to the "/cgi-bin/CliniNET.prd/GetActiveSessions.pl" endpoint allows takeover of any user session logged into the system, including users with admin privileges.

Unauthenticated access to the "/cgi-bin/CliniNET.prd/GetActiveSessions.pl" endpoint allows takeover of any user session logged into the system, including users with admin privileges.

EPSS

Процентиль: 6%
0.00024
Низкий

9 Critical

CVSS4

Дефекты

CWE-306

Связанные уязвимости

nvd
5 месяцев назад

Unauthenticated access to the "/cgi-bin/CliniNET.prd/GetActiveSessions.pl" endpoint allows takeover of any user session logged into the system, including users with admin privileges.

EPSS

Процентиль: 6%
0.00024
Низкий

9 Critical

CVSS4

Дефекты

CWE-306